CVE-2020-15917
23.07.2020, 19:15
common/session.c in Claws Mail before 3.17.6 has a protocol violation because suffix data after STARTTLS is mishandled.Enginsight
| Vendor | Product | Version |
|---|---|---|
| claws-mail | claws-mail | 𝑥 < 3.17.6 |
| opensuse | backports_sle | 15.0:sp1 |
| opensuse | backports_sle | 15.0:sp2 |
| opensuse | leap | 15.1 |
| opensuse | leap | 15.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References